CVE-2025-25277 – arkcompiler_ets_runtime has a type confusion vulnerability

CVE ID :CVE-2025-25277

Published : March 16, 2026, 7:09 a.m. | 1 hour ago

Description :in OpenHarmony v5.1.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through using incompatible type. This vulnerability can be exploited only in restricted scenarios.

Severity: 6.3 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more…